CVE-2026-91722
8.8Google · Chrome
A use after free vulnerability in the Google Chrome Input component allows a remote attacker to execute arbitrary code via a crafted HTML page.
Executive summary
A high-severity use after free vulnerability in Google Chrome allows unauthenticated remote attackers to execute arbitrary code on affected systems.
Vulnerability
This is a use after free flaw (CWE-416) within the Input component of the browser. The vulnerability can be triggered by an unauthenticated remote attacker through a maliciously crafted HTML page, requiring user interaction to execute.
Business impact
The ability to execute arbitrary code outside the browser sandbox poses a significant risk to organizational assets, potentially leading to full system compromise or unauthorized data exfiltration. With a CVSS score of 8.8, this vulnerability represents a high-severity threat that could facilitate lateral movement within the network if successful.
Remediation
Immediate Action: Update all Google Chrome installations to version 153.0.8010.47 or later to incorporate the vendor-provided patch.
Proactive Monitoring: Monitor endpoint security logs for anomalous browser behavior or unexpected process execution patterns originating from the Chrome application.
Compensating Controls: Deploy endpoint protection solutions capable of detecting memory corruption exploits and ensure that browser-based security policies are configured to restrict the execution of untrusted scripts.
Exploitation status
Public Exploit Available: No (exploit_available: unknown)
Analyst recommendation
Given the high CVSS score and the potential for arbitrary code execution, this vulnerability should be prioritized for immediate remediation. Administrators must enforce the update to version 153.0.8010.47 across the enterprise to eliminate the risk of exploitation.
More Google CVEs all →
History
- Disclosed CVE record published
- Collected by CVE Brief No CVSS score yet; tracked as early warning
- Analyst report written
- Published in the daily brief high section